ospf:--------------------------------------------------

AGENCIA2>ena
AGENCIA2#configure terminal
AGENCIA2(config)#router ospf 1
AGENCIA2(config-router)#network 172.16.14.0 0.0.0.255 area 0
AGENCIA2(config-router)#network 172.16.15.24 0.0.0.3 area 0
AGENCIA2(config-router)#network 172.16.15.32 0.0.0.3 area 0
AGENCIA2(config-router)#end

interfaces:--------------------------------------------

Router>enable
Router#configure terminal
Router(config)#hostname AGENCIA1
AGENCIA1(config)#interface FastEthernet0/0
AGENCIA1(config-if)#no shutdown
AGENCIA1(config-if)#ip address 172.16.12.1 255.255.0.0
AGENCIA1(config-if)#ip address 172.16.12.1 255.255.254.0
AGENCIA1(config-if)#
AGENCIA1(config-if)#end

inter vlan:-------------------------------------------

CORK(config-subif)#encapsulation dot1Q 20
CORK(config-subif)#ip address 172.16.4.1 255.255.252.0
CORK(config-subif)#no shutdown
CORK(config-subif)#exit

CORK(config)#interface fastEthernet 0/0.30
CORK(config-subif)#encapsulation dot1Q 30
CORK(config-subif)#ip address 172.16.8.1 255.255.252.0
CORK(config-subif)#no shutdown
CORK(config-subif)#end

NAT:--------------------------------------------------

BELFAST(config)#ip nat inside source static 192.168.20.1 209.165.200.9
BELFAST(config)#end
BELFAST(config)#interface serial 0/0/1
BELFAST(config-if)#ip nat outside
BELFAST(config-if)#interface fa0/0
BELFAST(config-if)#ip nat inside


ip nat pool My-nat 209.165.200.10 209.165.200.14 netmask 255.255.255.248
ip nat inside source list NAT pool My-nat
ip access-list extended NAT
 permit ip 192.168.10.0 0.0.0.255 any
 permit ip 192.168.11.0 0.0.0.255 any
 permit ip 192.168.20.0 0.0.0.255 any

Frame RElay:

AGENCIA2(config)#interface serial 2/0
AGENCIA2(config-if)#encapsulation frame-relay
exit
AGENCIA2(config)#interface serial 2/0.120 point to point
AGENCIA2(config-subif)#ip address 172.16.100.9 255.255.255.252
AGENCIA2(config-subif)#frame-relay interface-dlci 120
exit

Para el switch:
Switch(config)#interface range fa0/2-4
Switch(config-if-range)#switchport access   vlan 10
Switch(config-if-range)#exit
Switch(config)#interface range fa0/5-8
Switch(config-if-range)#switchport access   vlan 20
Switch(config-if-range)#exit
Switch(config)#interface range fa0/9-12
Switch(config-if-range)#switchport access   vlan 30
Switch(config-if-range)#end
Switch(config)#interface FastEthernet0/1
Switch(config-if)#switchport trunk native   vlan 1
Switch(config-if)#no shutdown
Switch(config-if)#end

Para autentificacion PPP con chap:---------------------------

ISP>ena
ISP#configure terminal
ISP(config)#username R3 password cisco
ISP(config-if)#interface serial 2/0
ISP(config-if)#encapsulation ppp
ISP(config-if)#ppp authentication chap
ISP(config-if)#end

R2(config)#username ISP password cisco
R2(config)#int s0/0/1
R2(config-if)#encapsulation ppp
R2(config-if)#ppp authentication chap
R2(config)#end

Para ACL:----------------------------------

CORK#ena
CORK#configure terminal
CORK(config)#access-list 101 remark Permite q la vlan3 tenga   acceso a
web,telnet,smnp.
CORK(config)#access-list 101 permit tcp 172.16.8.0 0.0.3.255   any   eq   23
CORK(config)#access-list 101 permit tcp 172.16.8.0 0.0.3.255   any   eq   80
CORK(config)#access-list 101 permit tcp 172.16.8.0 0.0.3.255   any   eq   25
CORK(config)#access-list 101 permit tcp 172.16.8.0 0.0.3.255   any   eq   7
CORK(config)#access-list 100 permit ip any any
CORK(config)#end
CORK(config)#interface fastEthernet 0/0.30
CORK(config-subif)#ip access-group 101 in
CORK(config-subif)#end

ISP# ena
ISP#conf
ISP#configure

ISP(config)#access-list   102 remark Permite todo el trafico desde vlan1 y
servidor
ISP(config)#access-list   102 permit ip 172.16.15.5 0.0.0.15 192.168.1.0 0.0.0.255
ISP(config)#access-list   102 permit ip 172.16.0.0 0.0.3.255 192.168.1.0 0.0.0.255
ISP(config)#access-list   102 permit ip any any

ISP(config)#access-list   103 remark Permite solo responder pings a las 2 agencias
ISP(config)#access-list   103 permit tcp 192.168.1.0 0.0.0.255 172.16.12.0
0.0.1.255 eq
ISP(config)#access-list   103 permit tcp 192.168.1.0 0.0.0.255 172.16.12.0
0.0.1.255 eq 7
ISP(config)#access-list   103 permit tcp 192.168.1.0 0.0.0.255 172.16.14.0
0.0.0.255 eq 7
ISP(config)#access-list   103 permit ip any any
ISP(config)#end


Para DHCP: --------------------------------------

Router(config)#ip dhcp excluded-address 192.0.0.1(gateway)
Router(config)#ip dhcp excluded-address 192.0.1.1

Router(config)#ip dhcp pool Rango1
Router(dhcp-config)#network 192.0.0.0 255.255.255.240 (direccion de red)
Router(dhcp-config)#dns-server 192.168.1.18
Router(dhcp-config)#default-router 192.0.0.1(gateway)

Router(config)#ip dhcp pool Rango2
Router(dhcp-config)#network 192.0.1.1 255.255.255.240
Router(dhcp-config)#dns-server 192.168.1.1
Router(dhcp-config)#default-router 192.0.1.1

--- En caso de que se necesite Administrar DHCP por medio de otro router: ----

Router1(config)#interface fastEthernet 0/0
Router1(config-if)#ip helper-address 172.16.100.9   (a la q solicita en frame
relay)
Router1(config-if)#end

Configuraciones examen 3

  • 1.
    ospf:-------------------------------------------------- AGENCIA2>ena AGENCIA2#configure terminal AGENCIA2(config)#router ospf1 AGENCIA2(config-router)#network 172.16.14.0 0.0.0.255 area 0 AGENCIA2(config-router)#network 172.16.15.24 0.0.0.3 area 0 AGENCIA2(config-router)#network 172.16.15.32 0.0.0.3 area 0 AGENCIA2(config-router)#end interfaces:-------------------------------------------- Router>enable Router#configure terminal Router(config)#hostname AGENCIA1 AGENCIA1(config)#interface FastEthernet0/0 AGENCIA1(config-if)#no shutdown AGENCIA1(config-if)#ip address 172.16.12.1 255.255.0.0 AGENCIA1(config-if)#ip address 172.16.12.1 255.255.254.0 AGENCIA1(config-if)# AGENCIA1(config-if)#end inter vlan:------------------------------------------- CORK(config-subif)#encapsulation dot1Q 20 CORK(config-subif)#ip address 172.16.4.1 255.255.252.0 CORK(config-subif)#no shutdown CORK(config-subif)#exit CORK(config)#interface fastEthernet 0/0.30 CORK(config-subif)#encapsulation dot1Q 30 CORK(config-subif)#ip address 172.16.8.1 255.255.252.0 CORK(config-subif)#no shutdown CORK(config-subif)#end NAT:-------------------------------------------------- BELFAST(config)#ip nat inside source static 192.168.20.1 209.165.200.9 BELFAST(config)#end BELFAST(config)#interface serial 0/0/1 BELFAST(config-if)#ip nat outside BELFAST(config-if)#interface fa0/0 BELFAST(config-if)#ip nat inside ip nat pool My-nat 209.165.200.10 209.165.200.14 netmask 255.255.255.248 ip nat inside source list NAT pool My-nat ip access-list extended NAT permit ip 192.168.10.0 0.0.0.255 any permit ip 192.168.11.0 0.0.0.255 any permit ip 192.168.20.0 0.0.0.255 any Frame RElay: AGENCIA2(config)#interface serial 2/0 AGENCIA2(config-if)#encapsulation frame-relay exit AGENCIA2(config)#interface serial 2/0.120 point to point AGENCIA2(config-subif)#ip address 172.16.100.9 255.255.255.252 AGENCIA2(config-subif)#frame-relay interface-dlci 120 exit Para el switch:
  • 2.
    Switch(config)#interface range fa0/2-4 Switch(config-if-range)#switchportaccess vlan 10 Switch(config-if-range)#exit Switch(config)#interface range fa0/5-8 Switch(config-if-range)#switchport access vlan 20 Switch(config-if-range)#exit Switch(config)#interface range fa0/9-12 Switch(config-if-range)#switchport access vlan 30 Switch(config-if-range)#end Switch(config)#interface FastEthernet0/1 Switch(config-if)#switchport trunk native vlan 1 Switch(config-if)#no shutdown Switch(config-if)#end Para autentificacion PPP con chap:--------------------------- ISP>ena ISP#configure terminal ISP(config)#username R3 password cisco ISP(config-if)#interface serial 2/0 ISP(config-if)#encapsulation ppp ISP(config-if)#ppp authentication chap ISP(config-if)#end R2(config)#username ISP password cisco R2(config)#int s0/0/1 R2(config-if)#encapsulation ppp R2(config-if)#ppp authentication chap R2(config)#end Para ACL:---------------------------------- CORK#ena CORK#configure terminal CORK(config)#access-list 101 remark Permite q la vlan3 tenga acceso a web,telnet,smnp. CORK(config)#access-list 101 permit tcp 172.16.8.0 0.0.3.255 any eq 23 CORK(config)#access-list 101 permit tcp 172.16.8.0 0.0.3.255 any eq 80 CORK(config)#access-list 101 permit tcp 172.16.8.0 0.0.3.255 any eq 25 CORK(config)#access-list 101 permit tcp 172.16.8.0 0.0.3.255 any eq 7 CORK(config)#access-list 100 permit ip any any CORK(config)#end CORK(config)#interface fastEthernet 0/0.30 CORK(config-subif)#ip access-group 101 in CORK(config-subif)#end ISP# ena ISP#conf ISP#configure ISP(config)#access-list 102 remark Permite todo el trafico desde vlan1 y servidor ISP(config)#access-list 102 permit ip 172.16.15.5 0.0.0.15 192.168.1.0 0.0.0.255 ISP(config)#access-list 102 permit ip 172.16.0.0 0.0.3.255 192.168.1.0 0.0.0.255 ISP(config)#access-list 102 permit ip any any ISP(config)#access-list 103 remark Permite solo responder pings a las 2 agencias ISP(config)#access-list 103 permit tcp 192.168.1.0 0.0.0.255 172.16.12.0 0.0.1.255 eq ISP(config)#access-list 103 permit tcp 192.168.1.0 0.0.0.255 172.16.12.0 0.0.1.255 eq 7 ISP(config)#access-list 103 permit tcp 192.168.1.0 0.0.0.255 172.16.14.0 0.0.0.255 eq 7 ISP(config)#access-list 103 permit ip any any
  • 3.
    ISP(config)#end Para DHCP: -------------------------------------- Router(config)#ipdhcp excluded-address 192.0.0.1(gateway) Router(config)#ip dhcp excluded-address 192.0.1.1 Router(config)#ip dhcp pool Rango1 Router(dhcp-config)#network 192.0.0.0 255.255.255.240 (direccion de red) Router(dhcp-config)#dns-server 192.168.1.18 Router(dhcp-config)#default-router 192.0.0.1(gateway) Router(config)#ip dhcp pool Rango2 Router(dhcp-config)#network 192.0.1.1 255.255.255.240 Router(dhcp-config)#dns-server 192.168.1.1 Router(dhcp-config)#default-router 192.0.1.1 --- En caso de que se necesite Administrar DHCP por medio de otro router: ---- Router1(config)#interface fastEthernet 0/0 Router1(config-if)#ip helper-address 172.16.100.9 (a la q solicita en frame relay) Router1(config-if)#end